You should probably update WinRAR

WinRAR 7.13 addresses new “directory traversal vulnerability”

WinRAR 7.13 has been released, an update that fixes several bugs in prior versions of the utility and fixes a new “directory traversal vulnerability”. While this vulnerability seems to be less significant than those addressed with version 7.12, it is worthwhile for users to update to the newest version of WinRAR.

WinRAR is a tool that is used to compress, encrypt, package, and backup files. The tool has 500,000 users and is said to be the world’s most popular compression tool. While modern OS’ feature many of WinRAR’s features built-in, the tool remains widely used today.

Below are the release notes of WinRAR version 7.13.

WinRAR 7.13 Final released

Release date: 30.07.2025

Another directory traversal vulnerability, differing from that in WinRAR 7.12, has been fixed.

When extracting a file, previous versions of WinRAR, Windows versions of RAR, UnRAR, portable UnRAR source code and UnRAR.dll can be tricked into using a path, defined in a specially crafted archive, instead of user specified path.

Unix versions of RAR, UnRAR, portable UnRAR source code and UnRAR library, also as RAR for Android, are not affected.

We are thankful to Anton Cherepanov, Peter Kosinar, and Peter Strycek from ESET for letting us know about this security issue.

Bugs fixed:

1 – WinRAR 7.12 “Import settings from file” command failed to restore settings, saved by WinRAR versions preceding 7.12;

2 – WinRAR 7.12 set a larger than specified recovery size for compression profiles, created by WinRAR 5.21 and older.

WinRAR

As with most software, PC users are safest using the newest versions of tools like WinRAR. System security is incredibly important, and using old software can be a way that bad actors can exploit your system.

You can join the discussion on WinRAR 7.13 on the OC3D Forums.

Mark Campbell

Mark Campbell

A Northern Irish father, husband, and techie that works to turn tea and coffee into articles when he isn’t painting his extensive minis collection or using things to make other things.

Follow Mark Campbell on Twitter
View more about me and my articles.

Uh-oh! It looks like you're using an ad blocker.

OC3D relies on ads to provide free content and sustain our operations. By white listing us on your ad blocker, you help support us and ensure we can continue offering valuable content without any cost to you. We only run our own hand picked ads from Industry brands like MSI, BeQuiet, Sapphire and PC-Specialist - meaning they are all relevent to the content you are reading.

We truly appreciate your understanding and support. Thank you for considering whitelisting OC3D